Junglewise Threat Intelligence

CVE-2025-64187: PYSEC-2026-1714 - OctoPrint vulnerable to XSS in Action Commands Notification and Prompt

CVE-2025-64187 · Severity: medium · CVSS 4 · Published 2026-07-07

Technologies: OctoPrint (PyPI). Vendors: PyPI.

Executive brief

OctoPrint vulnerable to XSS in Action Commands Notification and Prompt

Affected products

  • PyPI OctoPrint

Related threats